Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Public Cloud Security

Domain 3Objective 2

Virtual Network Security and Logging GPCS Practice Questions (Page 3)

Part of the Network and Compliance Security domain, which makes up ~19% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 5–8 from this objective — we provide 33 practice questions to prepare you well beyond it. (estimate)

33questions here
7free pages
6concepts

Questions 11–15

  1. 11application · medium

    A company is deploying a three-tier web application in a single VNet. The web tier must accept HTTPS traffic from the internet, the application tier must only accept traffic from the web tier, and the database tier must only accept traffic from the application tier. All tiers are in separate subnets. Which configuration should be implemented to meet these requirements?

    Select an answer first
  2. 12application · medium

    A security analyst is reviewing NSG flow logs and notices that a VM is sending a large amount of data to an IP address in a foreign country. The VM is a web server that should only communicate with internal resources. The analyst suspects data exfiltration. What should the analyst do first?

    Select an answer first
  3. 13application · medium

    A company must retain network traffic logs for at least one year to meet a regulatory requirement. They have enabled NSG flow logs and are sending them to a Log Analytics workspace. The security team wants to query the logs for specific source IPs and also needs to ensure the logs are not deleted before the retention period. What should they configure?

    Select an answer first
  4. 14expert · hard

    A company has a hub-and-spoke VNet topology. The hub contains a shared firewall appliance. The spokes contain application workloads. The security team wants to enforce that all outbound internet traffic from the spoke VMs goes through the hub firewall. They have configured user-defined routes (UDRs) in the spoke subnets to send internet-bound traffic to the firewall's IP. However, they notice that some traffic is bypassing the firewall. What is the most likely reason?

    Select an answer first
  5. 15application · medium

    A company is designing a VNet for a three-tier application. The web tier must be accessible from the internet, the app tier should only be accessible from the web tier, and the database tier should only be accessible from the app tier. The security team wants to ensure that each tier is isolated and that all traffic is logged. What is the best approach?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPCS” is a trademark of its owner, used for identification only.